Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Kentucky

It's safer, but security holes still affect the new browser. Plus, a worm in iPods.


1. Local Companies

Star Computers, Inc.
859-655-3330
90 Carothers Rd.
Newport, KY
BeaverDam-ElecSales
270-256-1583
101 Holmon Ct.
Hartford, KY
Psion Teklogix
859 372 4124
1810 Airport Exchange Blvd
Erlanger, KY
Shawns IT Solutions
270-320-3535
649 Fairview Boiling Springs Road
Bowling Green, KY
Localnet Corp
(502) 570-0799
Georgetown, KY
Judy's Networking
(859) 733-9753
106 Commercial Dr
Harrodsburg, KY
Ready Work Inc
(270) 575-9856
Paducah, KY
Netgain Internet Services
(859) 273-9537
Lexington, KY
Ientry Inc
(859) 514-2720
2549 Richmond Rd Ste 200
Lexington, KY
Express Technologies
(502) 568-2111
137 W Muhammad Ali Blvd Ste 300
Louisville, KY


2. Introduction

Internet Explorer 7 for Windows XP is finally out. Because it tries to fix or prevent many of the numerous security flaws that hit IE 6, it's arguably the largest bug fix we've seen in quite a while. For that reason alone, I recommend installing the update.

But IE 7 is not a panacea, in part because it still ties in to Windows for some of its work and can therefore pass along threats from buggy parts of the operating system (or other programs). We've seen a number of these types of problems recently, and now three more have been reported.

Less than a day after IE 7's release, Danish security firm Secunia said it had found a proof-of-concept, noncritical bug affecting IE 7. If you browse a malicious site while logged in to another site, an attacker could steal data you have on the logged-in site. Microsoft says the bug actually resides in Outlook Express, but IE 7 can be used as the attack vector, just like IE 6.

You're likewise vulnerable to a nasty, critical Windows bug involving XML, which is commonly used for Web sites and many document types, regardless of whether you use IE 6 or IE 7. Both versions hand off XML processing to Windows proper, where the bug originates. You could be infected with a drive-by download from a malicious Web site if an attacker directs a bunch of garbage data through IE to the newly discovered Windows weak spot. At press time no attacks had yet used this bug, but all currently supported versions of Windows could be hit. If you didn't receive the patch in Automatic Updates, check here.

The new IE does offer more protection than version 6 for another pass-through critical Windows glitch--one that has already proven to be a popular hacker target. This flaw hits the Windows Shell, which displays the Windows user interface. Attackers can employ an ActiveX control to reach the bug via IE (with yet another buffer overflow error) and thereby take over your system. As with the XML bug, all supported versions of Windows are affected.

IE 7 provides additional protection in this case because it displays an opt-in pop-up that requires your approval before running new ActiveX controls. The pop-up won't specifically tell you you're under attack, and if you just click OK as many people are now conditioned to do with many browser notices, you'll get nailed. But it's more protection than you'll get with IE 6, which on an unpatched system will download a malicious payload without warning if you browse a booby-trapped site. Get the fix from here or via Automatic Updates.

Video iPods may Come with Windows Worm

A small number of video iPods picked up an unwelcome tag-along during manufacturing: a Windows worm. The malware doesn't harm the iPod, but once the device hooks up to a PC, the worm can silently wiggle its way into the system--and from there to any linked external storage device, like a thumb drive.

Less than 1 percent of video iPods shipped between September 12 and mid-October carry the worm, but if it infects a PC it can give an attacker full remote control. As a fix, Apple posted links to free trials of popular antivirus apps for cleaning affected computers, and says to use iTunes 7 to wipe and restore an iPod. Apple's bulletin can be found here.

3. New Office Holes

Hackers are using a new batch of critical Office 2000 flaws to bite credulous openers of suspicious e-mail attachments. The holes are less dangerous, but still present, in Office 2003. Keep Office updated through Automatic Updates, or grab the patches here.

4. More Battery Heat

Sony is recalling some 3.5 million laptop batteries worldwide, including those used in its VAIO notebooks, as well as those in models from Fujitsu, Gateway, and Toshiba, because of a minute (but real) risk of overheating and fire. For a full list of recalled models and links to makers' recall sites, click here.

BUGGED?

Found a hardware or software bug? Send an e-mail about it to bugs@pcworld.com.

Stuart J. Johnston is a contributing editor for PC World.

5. Featured Local Company

Shawns IT Solutions

270-320-3535
649 Fairview Boiling Springs Road
Bowling Green, KY
http://www.shawnsitsolutions.com

Regional Articles
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Alexandria KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Ashland KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Barbourville KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Bardstown KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Benton KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Berea KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Bowling Green KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Burlington KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Cadiz KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Campbellsville KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Catlettsburg KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Central City KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Columbia KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Corbin KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Covington KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Crestwood KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Cynthiana KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Danville KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Elizabethtown KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Erlanger KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Florence KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Fort Campbell KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Fort Knox KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Fort Thomas KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Frankfort KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Franklin KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Ft Mitchell KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Georgetown KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Glasgow KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Grayson KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Greenup KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Greenville KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Harrodsburg KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Hazard KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Henderson KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Hopkinsville KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Independence KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Irvine KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Jackson KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already La Grange KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Lancaster KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Latonia KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Lawrenceburg KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Lebanon KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Leitchfield KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Lexington KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already London KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Louisa KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Louisville KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Madisonville KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Manchester KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Mayfield KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Maysville KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Middlesboro KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Monticello KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Morehead KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Morgantown KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Mount Sterling KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Mount Washington KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Murray KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Newport KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Nicholasville KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Olive Hill KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Owensboro KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Paducah KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Paris KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Pikeville KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Pineville KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Prestonsburg KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Princeton KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Prospect KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Radcliff KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Richmond KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Russell Springs KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Russellville KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Salyersville KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Scottsville KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Shelbyville KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Shepherdsville KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Somerset KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Stanford KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Union KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Versailles KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already West Liberty KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Williamsburg KY
- Bugs and Fixes: Internet Explorer 7 Proves Buggy Already Winchester KY
Rate Article
     
Articles Insider

Rss   Delicious   Digg   Add To My Yahoo   Add To My Google   Bookmark   Search Plugin

Topics:
Advertising Educational Content Home Appliances Real Estate Resources
Business Services Entertainment Home Electronics Software
Career Family Home Services Technology
Cars Fashion Internet Telecommunications
Chamber of Commerce Financial Services Legal Trade Shows
Computer Hardware Franchise Miscellaneous Travel
Construction Health Nightlife Weddings
Education Holidays Online Database World History